URL: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=d25a60c1c1db0d81e332272fe00ec4ef4fb03e65
Submitter: Anders Broman (a.broman58@xxxxxxxxx)
Changed: branch: master
Repository: wireshark
Commits:
d25a60c by Gerald Combs (gerald@xxxxxxxx):
More Sysdig / system event support.
Add REC_TYPE_SYSCALL to wiretap and use it for Sysdig events. Call the
Sysdig event dissector from the frame dissector. Create a "syscall"
protocol for system calls, but add "frame" items to it for now.
Add the ability to write Sysdig events. This lets us merge packet
capture and syscall capture files.
Change-Id: I12774ec69c89d8e329b6130c67f29aade4e3d778
Reviewed-on: https://code.wireshark.org/review/15078
Tested-by: Petri Dish Buildbot <buildbot-no-reply@xxxxxxxxxxxxx>
Reviewed-by: Anders Broman <a.broman58@xxxxxxxxx>
Actions performed:
from b26e757 Let the calculated window scale be 16 bit wide.
adds d25a60c More Sysdig / system event support.
Summary of changes:
epan/dissectors/packet-frame.c | 59 ++++++++++++---
epan/dissectors/packet-sysdig-event.c | 2 +
epan/packet.c | 4 ++
wiretap/merge.c | 5 +-
wiretap/pcapng.c | 126 ++++++++++++++++++++++++++++++++-
wiretap/wtap.h | 1 +
6 files changed, 184 insertions(+), 13 deletions(-)